CVE-2024-25948: Medium severity dell emc idrac service module vulnerability
Published Aug 1, 2024
·Updated
Dell iDRAC Service Module version 5.3.0.0 and prior, contain a Out of bound Write Vulnerability. A privileged local attacker could execute arbitrary code potentially resulting in a denial of service event.
Affected Software
1 affected component
Dell EMC iDRAC Service Module<5.3.1.0
Event History
Aug 1, 2024
CVE Published
via MITRE·07:09 AM
Data Sourced
via MITRE·07:09 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·08:15 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-25948?
CVE-2024-25948 is classified as a high-severity vulnerability due to its potential impact on system integrity.
2
How do I fix CVE-2024-25948?
To fix CVE-2024-25948, upgrade to Dell iDRAC Service Module version 5.3.1.0 or later.
3
Who is affected by CVE-2024-25948?
CVE-2024-25948 affects users running Dell iDRAC Service Module version 5.3.0.0 and prior.
4
What type of attack can exploit CVE-2024-25948?
CVE-2024-25948 can be exploited by a privileged local attacker to execute arbitrary code.
5
What could be the potential outcome of exploiting CVE-2024-25948?
Exploiting CVE-2024-25948 could lead to a denial of service event.